๐ธ๐ฎ
administrator
2026-09-11 22:36:39
(8 hours ago)
2026-09-06 00:12:40,061 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 172.71.232.95
2 ...
show more
2026-09-06 00:12:40,061 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 172.71.232.95
2026-09-06 00:12:40,061 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 172.71.232.95
2026-09-06 00:12:40,061 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 172.71.232.95
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-06 09:47:01
(5 days ago)
Multiple WAF Violations
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-05 12:50:40
(6 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-01 04:54:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:54:39.849240 2026] [security2:error] [pid 28957:tid 28957] [client 172.71.232.95:11277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thewaywework.com"] [uri "/.git/config"] [unique_id "apZaj0NDPTafvlLUmxaeRgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 02:31:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:31:28.995971 2026] [security2:error] [pid 30214:tid 30214] [client 172.71.232.95:11361] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.beckerbrokerage.net"] [uri "/.git/config"] [unique_id "apJEgOcqku7twvFCz1CLYAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 07:20:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:20:03.269062 2026] [security2:error] [pid 694:tid 694] [client 172.71.232.95:13707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.fuzzyecho.com"] [uri "/.git/HEAD"] [unique_id "apE2o55YcQ5FzKDMsag1kwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:11:20
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:11:13.077038 2026] [security2:error] [pid 10174:tid 10174] [client 172.71.232.95:14185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.arabou.co"] [uri "/.git/HEAD"] [unique_id "apDuQQciPWAIJB-2cQuv4gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 22:38:00
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:37:55.624341 2026] [security2:error] [pid 17664:tid 17664] [client 172.71.232.95:12524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ridgecrestconsultinggroup.com"] [uri "/.git/config"] [unique_id "apC8Q_QTrOzcCHEHh8wROAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 19:37:54
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:37:50.472568 2026] [security2:error] [pid 408:tid 408] [client 172.71.232.95:11096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.koswerks.net"] [uri "/.git/config"] [unique_id "ao9Ajl3g4M6J5ArRZeWHkQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:32:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:32:13.169839 2026] [security2:error] [pid 12241:tid 12241] [client 172.71.232.95:12511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.casadelsolmexico.net"] [uri "/.git/HEAD"] [unique_id "ao8jHUCIUSCojdTAMIZcCQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 14:02:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 10:02:19.559784 2026] [security2:error] [pid 51377:tid 51415] [client 172.71.232.95:11090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fandginsurancellc.antidote-it.com"] [uri "/.git/HEAD"] [unique_id "ao7x65O3aoy7qYA3Zo955wAAAck"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:50:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:50:35.187828 2026] [security2:error] [pid 13790:tid 13790] [client 172.71.232.95:11255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.yourbrandhere.com"] [uri "/.git/HEAD"] [unique_id "ao5wm2KNNCslBNZX2D2ZBAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:31:19
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:31:12.970852 2026] [security2:error] [pid 28267:tid 28267] [client 172.71.232.95:13062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.buynorthwest.com"] [uri "/.git/HEAD"] [unique_id "ao1S0NZDXlIdQPl5-T2tWgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-25 01:31:29
(2 weeks ago)
[25/Aug/2026:04:31:29 +0300] -- 172.71.232.95 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[25/Aug/2026:04:31:29 +0300] -- 172.71.232.95 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-24 23:17:22
(2 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.232.95 (FR/France/-): 1 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.232.95 (FR/France/-): 1 in the last 3600 secs
show less
Web App Attack